CVE-2024-22473
21.02.2024, 19:15
TRNG is used before initialization by ECDSA signing driver when exiting EM2/EM3 on Virtual Secure Vault (VSE) devices. This defect may allow Signature Spoofing by Key Recreation.This issue affects Gecko SDK through v4.4.0.Enginsight
Vendor | Product | Version |
---|---|---|
silabs | gecko_software_development_kit | 𝑥 ≤ 4.4.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration